BeAnywhere
Privacy Policy
This Privacy Policy explains how Besties, Inc. (“BeAnywhere,” “we,” “us”) collects, uses, and protects your information when you use the BeAnywhere mobile app (the “App”). BeAnywhere lets you upload photos of yourself and generates stylized, AI-created images of you in different scenes. This Policy explains our practices; it does not replace a separate permission where one is required.
We built BeAnywhere to do one thing with your photos — make fun images of you — and to hold onto as little as possible for as short a time as possible.
1. The short version
- We collect the selfies you upload, the images we generate for you, a per-device identifier, and your in-app purchase records.
- We use your photos to generate your images and for related security and provider safety checks. We do not use facial recognition to identify you, we do not build or store a “faceprint,” and we do not opt your photos into AI-model training.
- Uploaded photos in our Firebase storage are automatically deleted within 30 days after you most recently upload or reuse them. Your generated packs stay until you delete them. Service providers may temporarily process or retain data for safety, abuse prevention, security, or legal obligations as described below.
- You can delete your photos and generated packs, or delete your account, profile, contact information, and photos, from Settings. Group business statistics and restricted generation and transaction records without photos or contact information may remain for accounting, reconciliation, security, and anti-fraud purposes. Individual usage events are removed during account deletion.
- We do not sell your personal information.
2. Information we collect
Photos you provide. When you create a pack, you upload a small number of selfies. These are used to generate your images and are stored only as long as described in Section 5.
Images we generate. The AI photos we create for you (“packs”) are stored so you can view, save, and re-open them.
Device identifier. When you first open the App, we create an anonymous identifier stored securely on your device. This is how your packs are associated with you and restored when you reopen the App. It is not your name and does not by itself identify you in the real world.
Sign in with Apple (optional). Signing in is optional and is offered only so your packs can follow you to a new phone. If you choose it, we receive the name and email you authorize Apple to share — which may be Apple’s private relay email if you choose to hide your address. We do not automatically email packs to that address. Pack email is a separate action: you type or confirm a delivery address and tap Send photos for each pack. You can use the App fully without ever signing in.
Purchase information. When you buy a pack, the purchase is processed by Apple through in-app purchase. We receive a confirmation that a purchase was made; we do not receive or store your credit-card number — Apple handles payment.
Operational records. We keep the purchase, refund, delivery, generation-cost, and security records needed to operate the service and reconcile the business. Selected women’s or men’s styling describes a product choice, not an inference about your gender.
Product analytics. We use Google Analytics for Firebase (GA4) and our own event service to understand visits, pack selection, uploads, checkout, photo saves, and return visits. We send an opaque analytics identifier, app-instance identifiers, app/device information, and fixed product/event parameters. Google may derive approximate location from network information. We do not send your photos, image URLs, email, Apple credential, or device-ban identity to GA4. Advertising identifiers and advertising-personalization signals are disabled.
Crash diagnostics. We use Firebase Crashlytics to receive crash and device/app diagnostic information so we can identify and fix reliability problems. We report handled errors using a fixed context and error category instead of the original sensitive message, and do not attach your account ID, email, photos, or image URLs. Native crash reports include diagnostic installation identifiers and stack information.
Abuse prevention. To stop automated scripts from blocking uploads, our server converts the request network address into a one-way, server-secret daily bucket. We do not store the raw address in that bucket, and the bucket expires automatically after approximately two days.
Support communications. If you email us, we receive your message and the support identifier you send so we can find your packs and help you.
3. How we use your information
We use the information above to:
- generate your AI images and deliver, display, and restore your packs;
- process your purchases (via Apple) and provide any credits or re-shoots you’re owed;
- respond to your support requests;
- understand how the App is used, measure product performance, and improve reliability;
- keep the App secure, prevent abuse, and fix problems;
- comply with our legal obligations.
We do not sell or rent your personal information, and we do not opt your photos or generated images into training, fine-tuning, or improving any AI model.
4. Facial images and biometric information — important
BeAnywhere processes images that contain your face in order to generate stylized pictures of you. We want to be clear about what we do and do not do:
- We use your photos to generate artistic/stylized images at your request and to support security and provider safety checks for that service.
- We do not use facial recognition to identify you, and we do not match your face against any database.
- We do not create, capture, store, or use a face template, faceprint, facial-geometry scan, or other biometric identifier to identify you, and we do not enroll your face in any identification system.
- We do not sell or license your facial images to others.
- We do not opt your photos into AI-model training or improvement.
Written retention and destruction policy. We retain uploaded photos in our Firebase storage only as long as needed to provide the service and automatically delete them within 30 days after you most recently upload or reuse them. Generated packs are retained until you delete them (or delete all of your data). Our service providers may temporarily process or retain data for safety, abuse prevention, security, or legal obligations under their applicable terms and policies. If we ever stop offering the App, we will delete photos and generated images stored in our systems within a commercially reasonable time. This Section 4 is our publicly available written policy governing the retention and permanent destruction of facial information in our systems, as may be required by applicable biometric-privacy laws (including the Illinois Biometric Information Privacy Act).
Your consent. Before you upload photos, the App asks you to consent to this processing. You can withdraw consent at any time by deleting your data in the App and discontinuing use.
5. How long we keep data
- Uploaded selfies in our Firebase storage: automatically deleted within 30 days after you most recently upload or reuse them. Temporary service-provider processing or retention may occur for safety, abuse prevention, security, or legal obligations under the provider’s applicable terms and policies.
- Generated packs: kept until you delete them in the App or delete all your data.
- Packs you ask us to email: Resend processes the message and attachments to deliver them. Deleting photos in the App removes our Firebase copies but cannot recall a delivered email from your inbox or your email provider; you can delete that email directly.
- Copies outside BeAnywhere: photos you save to your Camera Roll, export through the share sheet, screenshot, send to another person, or receive by email are controlled by you and the recipient services. In-app deletion cannot silently remove or recall those copies.
- Account, profile, contact information, device credential, uploaded photos, and generated images: deleted when you delete your account. Individual raw usage events and purchase-cohort links are removed during account deletion. Group business results remain. Restricted generation and transaction evidence is kept separately for accounting, reconciliation, security, and anti-fraud purposes.
- Usage analytics: our raw event and session records are scheduled for expiration after 90 days; expiry cleanup can take additional processing time. GA4 follows the configured property retention and Google’s deletion processing. When you delete your account, we submit deletion requests for the known analytics user and app-instance identifiers and erase matching records in our configured BigQuery export, with a separate follow-up for late exports. This does not promise instantaneous deletion from a service provider’s backups.
- Crash diagnostics: Google states that Crashlytics keeps crash data and associated installation identifiers for 90 days before beginning removal from live and backup systems. These diagnostic records are not labelled with your BeAnywhere account ID.
- Business totals and limited financial records: pack-level group totals can remain after account deletion. Individual purchase-cohort links are finalized and removed at account deletion or 180 days after the first paid purchase, allowing processing time for the scheduled cleanup. Previously earned group totals remain; removing detail does not subtract past sales, costs, or repeat purchases. Restricted transaction correction receipts remain separate so later refunds and reversals can be reconciled without rebuilding a deleted usage profile. They contain no photos, contact details, or device-ban identity, and are not used to reconnect a deleted account to a new marketing or usage profile.
- One-way network abuse-limit buckets: approximately two days.
- When you choose Delete my photos & packs, we delete your uploaded photos and your generated packs from our systems. User-controlled Camera Roll, shared, screenshotted, and delivered-email copies remain until you delete them where they were saved.
6. Who we share data with (service providers)
We use a small number of trusted service providers that process data on our behalf, only to run the App:
- Apple — in-app purchases and, if you choose it, Sign in with Apple.
- RevenueCat — purchase verification and purchase-status handling.
- Our AI image-generation provider (currently OpenAI) — to perform image generation and related safety and abuse checks. OpenAI states that API data is not used to train its models unless the API customer opts in; we do not opt in. OpenAI may temporarily retain or review content for abuse monitoring, safety, security, or legal obligations under its applicable policies.
- Google Firebase / Google Cloud — authentication, database, file storage, server functions, GA4 usage analytics, and Crashlytics diagnostics used to run and improve the App.
- Expo — app updates and, if you enable notifications, push-notification delivery.
- Resend — delivery of your pack by email if you ask us to email it to you. Resend and your email provider may retain that sent or delivered message under their applicable policies; in-app deletion cannot recall it.
These providers are bound by their own terms and privacy commitments and are not permitted to use your data for their own unrelated purposes. We may also disclose information if required by law, to enforce our Terms, or to protect rights and safety. We do not sell your personal information.
7. Your rights and choices
- Delete your data anytime: Settings → Delete my photos & packs removes your uploaded photos and generated packs from BeAnywhere. It cannot remove copies saved to Photos, shared, screenshotted, or delivered by email.
- Delete your account anytime: Settings → Delete account removes your account, profile, contact information, device credential, uploaded photos, and generated images. Group business results and limited restricted generation and transaction evidence without photos or contact information may remain for accounting, reconciliation, security, and anti-fraud purposes. Individual raw usage events and purchase-cohort links are removed.
- California residents (CCPA/CPRA): You have the right to know what personal information we collect, to access and delete it, to correct it, and to limit the use of sensitive personal information (which can include facial images). We do not sell or share your personal information for cross-context behavioral advertising. To exercise these rights, use the in-app deletion option or email us. We will not discriminate against you for exercising your rights.
- Other states / regions: If your jurisdiction grants similar rights, you may contact us to exercise them.
8. Children
BeAnywhere is intended for adults 18 and older. It is not directed to children, and we do not knowingly collect personal information from anyone under 18. If you believe a child has used the App, contact us and we will delete the information.
9. Security
We use reasonable technical and organizational measures (including encrypted transport and access controls through our service providers) to protect your information. No system is perfectly secure, but we limit what we collect and how long we keep it specifically to reduce risk.
10. Where data is processed
BeAnywhere is operated from the United States, and your information is processed in the United States. If you use the App from outside the U.S., you understand your information will be processed in the U.S.
11. Changes to this Policy
We may update this Policy from time to time. If we make material changes, we will update the effective date and, where appropriate, notify you in the App. Continued use after changes means you accept the updated Policy.
12. Contact us
Questions or requests about your privacy? Email us at [email protected].